Vulnerabilities

Summary — last 7 days

New vulnerabilities2,769▼ 305 vs. last week
Critical / high1,294▼ 203 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)207▼ 114 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedLow (2.1)1.6%—Christopher Mitchell Smart Breadcrumb6/27/20126/16/2026
The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.